StackRadar

seata-server 1.0.0 Helm chart

heidaodageshiwoVerified publisher

Scored 14 Sept 2026

Seata Server

Version 1.0.0 4 years agodeploys tag 1.5.1 1Artifact Hub

seata-server 1.0.0 deploys 1 container image: seataio/seata-server. Across them, 266 findings12 critical, 18 high 6 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-webmvc 5.3.13, fixed in 5.3.18.

Radar Score

5,6241218108128

266 findings over 1 of 1 images measured

KEV ×6 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
seataio/seata-server1.5.112181081285,624

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

266 distinct across the version’s images
SeverityAdvisoryPackageFixed in
CriticalGHSA-36p3-wjmg-h94xKEVspring-webmvc@5.3.135.3.18
CriticalGHSA-36p3-wjmg-h94xKEVspring-boot-starter-web@2.4.132.5.12
CriticalGHSA-36p3-wjmg-h94xKEVspring-beans@5.3.135.3.18
CriticalGHSA-83qj-6fr2-vhqgKEVtomcat-embed-core@9.0.559.0.99
CriticalALPINE-CVE-2020-15999KEVfreetype@2.9.1-r22.9.1-r3
CriticalGHSA-2qrg-x229-3v8qlog4j@1.2.17no fix listed
CriticalGHSA-65fg-84f6-3jq3log4j@1.2.17no fix listed
CriticalGHSA-mjmj-j48q-9wg2snakeyaml@1.272.0
CriticalGHSA-f7vh-qwp3-x37mlog4j@1.2.17no fix listed
CriticalGHSA-w9p3-5cr8-m3jjlog4j@1.2.17no fix listed
CriticalALPINE-CVE-2019-8457sqlite@3.26.0-r33.28.0-r0
CriticalGHSA-5j33-cvvr-w245tomcat-embed-core@9.0.559.0.98
HighGHSA-fp5r-v3w9-4333log4j@1.2.17no fix listed
HighGHSA-4wrc-f8pq-fpqpspring-web@5.3.136.0.0
HighGHSA-wmwf-9ccg-fff5tomcat-embed-core@9.0.559.0.109
HighGHSA-h3gc-qfqq-6h8ftomcat-embed-core@9.0.559.0.106
HighGHSA-g5vr-rgqm-vf78spring-webmvc@5.3.13no fix listed
HighALPINE-CVE-2021-23840openssl@1.1.1b-r11.1.1j-r0
HighGHSA-hfrx-6qgj-fp6ctomcat-embed-core@9.0.559.0.71
HighGHSA-qppj-fm5r-hxr3KEVtomcat-embed-core@9.0.559.0.81
HighALPINE-CVE-2021-3449openssl@1.1.1b-r11.1.1k-r0
HighGHSA-crf3-v9rr-v7hjfastjson@1.2.73no fix listed
HighGHSA-hh32-7344-cg2fspring-security-web@5.4.95.4.11
HighGHSA-hh32-7344-cg2fspring-security-core@5.4.95.4.11
HighGHSA-pv7h-hx5h-mgfjfastjson@1.2.731.2.83
HighGHSA-558x-2xjg-6232spring-expression@5.3.135.3.17
HighGHSA-7w75-32cg-r6g2tomcat-embed-core@9.0.559.0.86
HighGHSA-vfww-5hm6-hx2jtomcat-embed-core@9.0.559.0.109
HighALPINE-CVE-2019-12900bzip2@1.0.6-r61.0.6-r7
HighGHSA-27hp-xhwr-wr2mtomcat-embed-core@9.0.559.0.98
MediumGHSA-cx7f-g6mp-7hqmspring-webmvc@5.3.13no fix listed
MediumGHSA-mc84-pj99-q6hhcommons-compress@1.191.21
MediumGHSA-crv7-7245-f45fcommons-compress@1.191.21
MediumGHSA-2g86-r6w2-wqqrnacos-client@1.4.2no fix listed
MediumGHSA-7hfm-57qf-j43qcommons-compress@1.191.21
MediumGHSA-j563-grx4-pjpvxstream@1.4.191.4.20
MediumGHSA-24rp-q3w6-vc56postgresql@42.1.442.2.28
MediumGHSA-xqfj-vm6h-2x34commons-compress@1.191.21
MediumALPINE-CVE-2019-5018sqlite@3.26.0-r33.28.0-r0
MediumGHSA-f62v-xpxf-3v68ant@1.10.61.10.9
MediumGHSA-7phw-cxx7-q9vqspring-webmvc@5.3.135.3.26
MediumALPINE-CVE-2019-14697musl@1.1.20-r41.1.20-r5
MediumGHSA-g5mm-vmx4-3rg7spring-context@5.3.135.3.19
MediumALPINE-CVE-2019-1551openssl@1.1.1b-r11.1.1d-r2
MediumGHSA-ccgv-vj62-xf9hspring-web@5.3.135.3.32
MediumGHSA-57j2-w4cx-62h2jackson-databind@2.11.42.12.6.1
MediumGHSA-wm9w-rjj3-j356tomcat-embed-core@9.0.559.0.90
MediumGHSA-88cc-g835-76rppostgresql@42.1.442.2.13
MediumALPINE-CVE-2020-28196krb5@1.15.5-r01.15.5-r1
MediumALPINE-CVE-2020-11655sqlite@3.26.0-r33.28.0-r3

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.0.0latest4 years ago1.5.112181081285,624

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/heidaodageshiwo/seata-server.svg)](https://charts.stackradar.io/charts/heidaodageshiwo/seata-server)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.